202.172.28.10 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 202.172.28.10 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Possibly Malicious Host 🟢 15/100

Host and Network Information

  • JARM: 29d29d38d29d29d00042d42d0000009435214b849738c4ebab4534b5d158dd

  • View other sources: Spamhaus VirusTotal

  • Contained within other IP sets: hphosts_ats, hphosts_hfs

Malware Detected on Host

Count: 13 504a17fa16bf4d34c589460c87c354379af5c753f56bb1956820a40585dceb21 5f9fb117cd7a9dfb59d0239e59a7b24454b722e56a3ce7c8e4d7caf87afa6bf1 22c2aba6004b69c061c5002504c7f5ec0c17e05420d17d9a39e0da3b0cdc9864 e22aa27d8f3e4a90610793ff9a8b293b470a9fc719591f9a68a3e7463823144d db210c474dde2ada798901c66cb492cff01bdedc361c9f1399048366831f26fd fc6373f3a1f1c286e848af22a5b2280b3481d8d5f22084cc013f9e4f5bc67103 d1fde55199a7aa4ef63c91f9d2b31d715d1268771b767155317db2bfc9020a34 21449d06bceea0a97a01eab18e36277203603cd85f8c7bf3c9f22976e79834d1 b0bf8fe62ad8c09964ec1edc20b6e4fb338da71da51ee059a15a0393dee9f77e 97d1375e81b4c79a3789d309133787324d0523db43b55bd0fc171edcf937df40

Open Ports Detected

110 143 21 22 25 443 465 587 80 993 995

Map

Whois Information

  • inetnum: 202.172.24.0 - 202.172.31.255
  • netname: DIGIROCK
  • descr: GMO DIGIROCK, Inc.
  • descr: Minamisenba 3-1-8 MinamiSenba
  • descr: Dream Building, Chuo-ku,Osaka-shi, Osaka 542-0081, Japan
  • country: JP
  • admin-c: JNIC1-AP
  • tech-c: JNIC1-AP
  • status: ALLOCATED PORTABLE
  • mnt-irt: IRT-JPNIC-JP
  • mnt-by: MAINT-JPNIC
  • mnt-lower: MAINT-JPNIC
  • last-modified: 2014-05-19T06:08:02Z
  • irt: IRT-JPNIC-JP
  • address: Uchikanda OS Bldg 4F, 2-12-6 Uchi-Kanda
  • address: Chiyoda-ku, Tokyo 101-0047, japan
  • e-mail: hostmaster@nic.ad.jp
  • abuse-mailbox: hostmaster@nic.ad.jp
  • phone: +81-3-5297-2311
  • fax-no: +81-3-5297-2312
  • admin-c: JNIC1-AP
  • tech-c: JNIC1-AP
  • mnt-by: MAINT-JPNIC
  • last-modified: 2025-04-10T11:04:13Z
  • role: Japan Network Information Center
  • address: Uchikanda OS Bldg 4F, 2-12-6 Uchi-Kanda
  • address: Chiyoda-ku, Tokyo 101-0047, Japan
  • country: JP
  • phone: +81-3-5297-2311
  • fax-no: +81-3-5297-2312
  • e-mail: hostmaster@nic.ad.jp
  • admin-c: JI13-AP
  • tech-c: JE53-AP
  • nic-hdl: JNIC1-AP
  • mnt-by: MAINT-JPNIC
  • last-modified: 2022-01-05T03:04:02Z
  • inetnum: 202.172.28.0 - 202.172.31.255
  • netname: DR-NET
  • descr: DigiRock, Inc.
  • country: JP
  • admin-c: KH9600JP
  • tech-c: KH9600JP
  • last-modified: 2007-05-18T23:59:13Z

Links to attack logs

****** ****** ******

Share on: